CVE-2015-3395

Source
https://cve.org/CVERecord?id=CVE-2015-3395
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2015-3395.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2015-3395
Downstream
Related
Withdrawn
2026-01-27T04:14:59Z
Published
2015-06-16T16:59:04Z
Modified
2026-04-16T01:40:03Z
Summary
[none]
Details

The msrle_decode_pal4 function in msrledec.c in Libav before 10.7 and 11.x before 11.4 and FFmpeg before 2.0.7, 2.2.x before 2.2.15, 2.4.x before 2.4.8, 2.5.x before 2.5.6, and 2.6.x before 2.6.2 allows remote attackers to have unspecified impact via a crafted image, related to a pixel pointer, which triggers an out-of-bounds array access.

References

Affected packages